GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Thu Jun 18, 2015 12:26 am Post subject: [ GLSA 201504-06 ] X.Org X Server |
|
|
Gentoo Linux Security Advisory
Title: X.Org X Server: Multiple vulnerabilities (GLSA 201504-06)
Severity: high
Exploitable: remote
Date: April 17, 2015
Bug(s): #532086, #539692
ID: 201504-06
Synopsis
Multiple vulnerabilities have been found in X.Org X Server,
allowing attackers to execute arbitrary code or cause a Denial of Service
condition.
Background
The X Window System is a graphical windowing system based on a
client/server model.
Affected Packages
Package: x11-base/xorg-server
Vulnerable: < 1.12.4-r4
Unaffected: >= 1.12.4-r4
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in X.Org X Server. Please
review the CVE identifiers referenced below for details.
Impact
A remote attacker could possibly execute arbitrary code with the
privileges of the process or cause a Denial of Service condition.
Workaround
There is no known workaround at this time.
Resolution
All X.Org X Server users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=x11-base/xorg-server-1.12.4-r4"
|
References
CVE-2014-8091
CVE-2014-8092
CVE-2014-8093
CVE-2014-8094
CVE-2014-8095
CVE-2014-8096
CVE-2014-8097
CVE-2014-8098
CVE-2014-8099
CVE-2014-8100
CVE-2014-8101
CVE-2014-8102
CVE-2014-8103
CVE-2015-0255 |
|